Gradual Release: Unifying Declassification, Encryption and Key Release Policies

Gradual Release: Unifying Declassification, Encryption and Key Release Policies
复制标题

逐步发布:统一解密、加密和密钥发布策略

DOI:
10.1109/sp.2007.22
复制
发表时间:
2007
期刊:
2007 IEEE Symposium on Security and Privacy (SP '07)
影响因子:
--
通讯作者:
A. Sabelfeld
A. Sabelfeld
中科院分区:
--
文献类型:
--
作者:
Aslan Askarov;A. Sabelfeld

文献摘要

被引文献

相似文献

信息安全需要解决:通过表达信息发布(或解密)策略启用信息流控制。现有的方法倾向于解决信息发布的某些方面,从而使其他方面发生了可能的攻击。令人惊讶的是,这些方法分为两个主要类别:基于启示(如信息购买,汇总计算,游戏中的移动等)和基于加密的解密(如在不信任的网络发送加密秘密一样,存储,密码等)。本文介绍了逐步发布,该策略统一解密,加密和关键发布政策。我们将攻击者的知识建模为可能的秘密输入,以作为可观察到的输出的功能。逐渐释放的本质是,这些知识必须在发行之间保持恒定。逐渐发行是发布策略的有力基础,我们通过正式连接基于启示录和基于加密的解密来证明这一点。此外,我们表明可以通过安全类型和效果来证明逐渐发布。
Information security has a challenge to address: enabling information-flow controls with expressive information release (or declassification) policies. Existing approaches tend to address some aspects of information release, exposing the other aspects for possible attacks. It is striking that these approaches fall into two mostly separate categories: revelation-based (as in information purchase, aggregate computation, moves in a game, etc.) and encryption-based declassification (as in sending encrypted secrets over an untrusted network, storing passwords, etc.). This paper introduces gradual release, a policy that unifies declassification, encryption, and key release policies. We model an attacker's knowledge by the sets of possible secret inputs as functions of publicly observable outputs. The essence of gradual release is that this knowledge must remain constant between releases. Gradual release turns out to be a powerful foundation for release policies, which we demonstrate by formally connecting revelation-based and encryption-based declassification. Furthermore, we show that gradual release can be provably enforced by security types and effects.